|
William McBorrough, MSIA,CISSP,CISA,CRISC,CEHInformation Assurance and Cyber Security Expert, Researcher, Educator and Evangelist |
|
United States, Woodbridge www.askvisory.com/williammcborrough |
Why you should speak with me:
I advise executives on how to manage your organization's security risk and protect your assets efficiently and cost effectively
Summary:
William J McBorrough is a Security Expert with many years of success Managing, Designing, and Implementing medium and large enterprise Physical and Information Technology Security Solutions. His experience spans the spectrum from small e-commerce start-ups to multi-campus state and federal agencies to multi-state financial sector organizations. He is also on the faculty of various universities including University of Maryland University College, EC-Council University, George Mason University and Northern Virginia Community College where he conducts research and teach graduate and undergraduate courses relating to cybersecurity, cybercrime, cyberterrorism, and information security and assurance. He holds a Bachelors of Science in Computing Engineering with a concentration in digital networks and a Masters of Science in Information Security and Assurance. He is a Certified Information Systems Security Professional (CISSP), Certified Information Systems Auditor (CISA), Certified in Risk Information System Control (CRISC), and Certified Ethical Hacker (CEH).He is well versed in personnel, systems and network security risk management. His core competancies include Developing cost effective solutions to enable mission assurance in the following areas: Enterprise Risk Management, IT Governance, Security Organization Development, Information Security and Assurance
Career History
- Enterprise:
- Secure Invention
- Position:
- Advisor
- Summary:
- Secure Intervention provides Expert Executive level Information Assurance and Cyber Security Advisory Services to help client executives and managers manage risks to their sensitive information and mission-critical systems throughout its entire life cycle.
- Year:
- Oct 2011 – Present
- Enterprise:
- Department of Homeland Security/Transportation Security Administration
- Position:
- Security Infrastructure Architect
- Summary:
- Support new technology initiatives and TSA Meetings for Secure Infrastructure
Interface with DHS and other Components on Secure Infrastructure initiatives and other working groups
Analyze security requirements and provide recommendations to enhance security posture and for FISMA compliance
Act as a DRM/DLP Secure Infrastructure resource for internal data security and protection efforts
Extract and maintain Security Requirements from Policy, Standards and other Best Practices as required
Integrate Security Requirements throughout the Systems Engineering Life Cycle (SELC)
Review and provide recommendations for updates of TSA IT Security Policies and Technical Standards
Review and provide recommendations for COTS/GOTS TSA Application Approvals
Review and provide IAS recommendations for internal Application Development efforts
Develop and present technical presentations for a wide range of audiences - Year:
- Nov 2011 – Present
- Enterprise:
- Pragmatics, Inc.
- Position:
- Lead Principal Engineer
- Summary:
- Leads security projects as subject matter expert providing both internal and external consulting services. Works independently on advanced systems/software analysis projects. Develops and conducts training programs. Recommends future direction or projects to management. Provides expertise and direction in the development or modification of complex technology risk management programs.
- Year:
- Nov 2011 – Present
- Enterprise:
- ISC8
- Position:
- Board Member, Technical Advisory Board
- Summary:
- A visionary in a world of look-alike security companies, ISC8 has evolved from Irvine Sensors Corporation, a company founded in 1974. Our singular focus now is to deliver the most comprehensive security solutions available - solutions that to give you visibility into everything that's happening on your mission-critical networks, and then mitigates your risk as new threats to your security emerge.
Having performed customer-funded research and developed technology used primarily by the U.S. government for key national security initiatives, ISC8 is now leveraging its more than 30-years of experience to bring a new breed of security products to market. These products are intended to solve the toughest challenges government, defense, and business face - including the human factor, a problem that until now has gone virtually unaddressed. - Year:
- Jan 2011 – Present
- Enterprise:
- EC-Council University
- Position:
- Adjunct Faculty, Information Security
- Summary:
- Teach multiple courses in EC-Council University's Masters of Security Science program. Courses include Disaster Recovery, e-Business Security, Cyber Law and Project Management in IT Security
- Year:
- Jan 2011 – Present
- Enterprise:
- University of Maryland University College
- Position:
- Assistant Professor, Cybersecurity
- Summary:
- Teach multiple courses in the cybersecurity degree program including cybercrime and cyberterrorism, systems and telecommunications security architecture, and information security assessment and planning.
- Year:
- Jan 2011 – Present
- Enterprise:
- InfraGard Nations Capital Members Alliance
- Position:
- Member
- Summary:
- Our 1000+ membership is voluntary yet exclusive and is comprised of individuals from both the public and private sector. The main goal of the Washington, DC Nations Capital Chapter of InfraGard is to promote ongoing dialogue, education, community outreach and timely communication between public and private members. Furthermore, to achieve and sustain risk-based target levels of capability to prevent, protect against, respond to, and recover from all hazards or events, and to minimize their impact on lives, property, and the economy.
InfraGard members gain access to vital information and education that enables them to in turn provide assistance to prevent and address terrorism and other transnational crimes. InfraGard members are provided threat advisories, alerts and warnings and access to a robust secure web-VPN site and e-mail. InfraGard also helps promote an effective liaison with local, state and federal agencies, to include the Department of Homeland Security.
The FBI retained InfraGard as an FBI sponsored program, and will work closely with DHS in support of the CIP mission. The FBI will further facilitate InfraGard's continuing role in CIP activities and further develop InfraGard's ability to support the FBI's investigative mission, especially as it pertains to counterterrorism and cyber crimes. The FBI and Department of Homeland Security Office of Infrastructure Protection are currently executing an InfraGard Partnership Program Plan under a Memorandum of Understanding signed in December 2007. - Year:
- Jan 2010 – Present
- Enterprise:
- Various Online Publications
- Position:
- Infosec Blogger/Contributing Author/Reviewer
- Summary:
- Contributing author/reviewer/blogger at various online media, focusing on information security, including Examiner.com, Focus.com, Ulitzer.com, InfoSec3T.com, Internet Evolution, and Enterprise IT Security magazine.
- Year:
- Jan 2009 – Present
- Enterprise:
- Northern Virginia Community College
- Position:
- Adjunct Faculty, Network Security
- Summary:
- Teach multiple courses at undergraduate level, including:
• ‘Ethical Hacking, Attacks and Computer Crime’, which provides an in-depth exploration of various methods for attacking and defending a network from the point of view of the hacker and their attack methodologies
• ‘Network Defense, Firewalls, Intrusion Detection, and E-Commerce Security’, which provides an in-depth exploration of Firewalls, Intrusion Detection Systems, Virtual Private Network solutions, and E-Commerce Security Solutions
• ‘Network Security Layers’, which provides an in-depth exploration in the various security layers needed to implement a security program based in Defense-in-Depth philosophy. Topics covered include Security Management, Operations Security, Physical Security, LAN Security, Personnel Security, Applications/Database/Systems Security. - Year:
- Jan 2008 – Present
- Enterprise:
- George Mason University
- Position:
- Adjunct Faculty, Network Security
- Summary:
- Course examines information security services and mechanisms in network context. Topics include symmetric and asymmetric cryptography; message authentication codes, hash functions and digital signatures; digital certificates and public key infrastructure; access control including hardware and biometrics; intrusion detection; and securing network-enabled applications including e-mail and
web browsing - Year:
- Jan 2011 – May 2011
- Enterprise:
- Secure Intervention
- Position:
- President & Information Security SME
- Summary:
- Secure Intervention provides Expert Executive level Information Assurance and Cyber Security Advisory Services to help client executives and managers manage risks to their sensitive information and mission-critical systems throughout its entire life cycle. Our goal is to help you develop, implement and maintain sensible and cost-effective strategies to protect your information assets by investigating threats, eliminating vulnerabilities, and managing risks unique to your organization.
- Year:
- Jan 2010 – Oct 2011
- Enterprise:
- SMB Cyber Security Alliance
- Position:
- Founder and Security Evangelist
- Summary:
- The SMB Cyber Security Alliance is volunteer-run organization seeking to increase cyber security awareness in small business communities through education, awareness training, free resources and consultations, and active engagements between small business owners and local security professionals.
- Year:
- Jan 2010 – 2011
Education & Qualifications
- University:
- George Mason University
- Degree:
- MS
- Year:
- 2010
- University:
- George Mason University
- Degree:
- BS
- Year:
- 2003
Other Qualifications & Awards
Languages Spoken
Industry Focus:
Internet
Management Consulting
Management Consulting
Business Areas:
IT – Information Technology
Strategy & Business Advisory
Strategy & Business Advisory
Key Skills:
Developing cost effective solutions to enable mission assurance in the following areas: Enterprise Risk Management, IT Governance, Security Organization Development, Information Security and Assurance
Loading...